Sedreco
Description
(ESET) Sedreco serves as a spying backdoor; its functionalities can be extended with dynamically loaded plugins. It is made up of two distinct components: a dropper and the persistent payload installed by this dropper. We have not seen this component since April 2016.
Names
Name |
---|
Sedreco |
AZZY |
EVILTOSS |
ADVSTORESHELL |
NETUI |
Category
Malware
Type
- Backdoor
- Info stealer
- Loader
Information
- https://www.welivesecurity.com/2017/12/21/sednit-update-fancy-bear-spent-year/
- http://www.welivesecurity.com/wp-content/uploads/2016/10/eset-sednit-part-2.pdf
- http://www.malware-reversing.com/2012/12/3-disclosure-of-another-0day-malware_15.html
- https://securelist.com/blog/research/72924/sofacy-apt-hits-high-profile-targets-with-updated-toolset/
- https://contagiodump.blogspot.de/2017/02/russian-apt-apt28-collection-of-samples.html
Mitre Attack
Malpedia
Other Information
Uuid
629e994e-7ff1-4a18-9f31-7ad8400139ca
Last Card Change
2020-05-14